CVE-2026-20434
- EPSS 0.06%
- Veröffentlicht 02.03.2026 08:39:10
- Zuletzt bearbeitet 02.03.2026 22:04:18
In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges need...
CVE-2025-20795
- EPSS 0.01%
- Veröffentlicht 06.01.2026 02:15:43
- Zuletzt bearbeitet 08.01.2026 19:24:19
In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Pa...
CVE-2025-20678
- EPSS 0.04%
- Veröffentlicht 02.06.2025 02:29:47
- Zuletzt bearbeitet 17.02.2026 15:16:07
In ims service, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. U...
CVE-2025-20665
- EPSS 0.02%
- Veröffentlicht 05.05.2025 02:49:18
- Zuletzt bearbeitet 12.05.2025 18:15:44
In devinfo, there is a possible information disclosure due to a missing SELinux policy. This could lead to local information disclosure of device identifier with no additional execution privileges needed. User interaction is not needed for exploitati...
CVE-2025-20667
- EPSS 0.42%
- Veröffentlicht 05.05.2025 02:49:11
- Zuletzt bearbeitet 17.02.2026 15:16:07
In Modem, there is a possible information disclosure due to incorrect error handling. This could lead to remote information disclosure, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges ...
CVE-2025-20659
- EPSS 0.28%
- Veröffentlicht 07.04.2025 03:14:54
- Zuletzt bearbeitet 17.02.2026 15:16:07
In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User i...
CVE-2025-20652
- EPSS 0.02%
- Veröffentlicht 03.03.2025 03:15:10
- Zuletzt bearbeitet 22.04.2025 13:44:46
In V5 DA, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is nee...
CVE-2025-20647
- EPSS 0.12%
- Veröffentlicht 03.03.2025 03:15:09
- Zuletzt bearbeitet 17.02.2026 15:16:06
In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User inte...
CVE-2024-20154
- EPSS 39.24%
- Veröffentlicht 06.01.2025 04:15:07
- Zuletzt bearbeitet 17.02.2026 15:16:05
In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User ...
CVE-2024-20150
- EPSS 7.36%
- Veröffentlicht 06.01.2025 04:15:07
- Zuletzt bearbeitet 22.04.2025 13:50:21
In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01412526; Issue ID: MSV-2018.